Schneider-electric

Network Management Card 3 Firmware

6 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.82%
  • Veröffentlicht 28.01.2022 20:15:10
  • Zuletzt bearbeitet 21.11.2024 05:50:43

A CWE-79: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability exists that could cause script execution when the request of a privileged account accessing the vulnerable web page is intercepted. Affected ...

  • EPSS 0.82%
  • Veröffentlicht 28.01.2022 20:15:10
  • Zuletzt bearbeitet 21.11.2024 05:50:43

A CWE-79: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability exists that could cause arbritrary script execution when a privileged account clicks on a malicious URL specifically crafted for the NMC. Aff...

  • EPSS 0.82%
  • Veröffentlicht 28.01.2022 20:15:10
  • Zuletzt bearbeitet 21.11.2024 05:50:43

A CWE-79: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability exists that could cause arbritrary script execution when a privileged account clicks on a malicious URL specifically crafted for the NMC poin...

  • EPSS 0.82%
  • Veröffentlicht 28.01.2022 20:15:10
  • Zuletzt bearbeitet 21.11.2024 05:50:43

A CWE-79: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability exists which could cause arbritrary script execution when a malicious file is read and displayed. Affected Products: 1-Phase Uninterruptible ...

  • EPSS 0.25%
  • Veröffentlicht 28.01.2022 20:15:10
  • Zuletzt bearbeitet 21.11.2024 05:50:43

A CWE-200: Information Exposure vulnerability exists which could cause the troubleshooting archive to be accessed. Affected Products: 1-Phase Uninterruptible Power Supply (UPS) using NMC2 including Smart-UPS, Symmetra, and Galaxy 3500 with Network Ma...

  • EPSS 0.82%
  • Veröffentlicht 28.01.2022 20:15:09
  • Zuletzt bearbeitet 21.11.2024 05:50:42

A CWE-79: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability exists that could cause arbritrary script execution when a privileged account clicks on a malicious URL specifically crafted for the NMC poin...